//package com.crm.jdy.controller.ceshi.shiro;
//
//import net.logstash.logback.encoder.org.apache.commons.lang.StringEscapeUtils;
//
//public class Mains {
//
//    public static void main(String[] args) {
//         String password = "&,*12390()";
//          password  =   StringEscapeUtils.escapeSql(password);
//        System.out.println(password);
//        String sql = "SELECT COUNT(userId) FROM t_user WHERE userName='"
//                + password + "' AND password ='" + password + "'";
//        System.out.println(sql);
//    }
//}
